美利体育登录入口官网

美利体育登录入口官网:ETSI TS 132 371-2017
数字蜂窝通信系统(第2+阶段)(GSM全球通信系统);通用移动通信系统(UMTS);长期演进技术(LTE);通信管理;安全管理概念和要求(V14.0.0;3GPP TS 32.371版本14.0.0 发行版本14)

Digital cellular telecommunications system (Phase 2+) (GSM); Universal Mobile Telecommunications System (UMTS); LTE; Telecommunication management; Security Management concept and requirements (V14.0.0; 3GPP TS 32.371 version 14.0.0 Release 14)

2018-07

美利体育登录入口官网: ETSI TS 132 371-2017 发布历史

ETSI TS 132 371-2017由欧洲电信标准协会 IX-ETSI 发布于 2017-04-01。

ETSI TS 132 371-2017 在中国标准分类中归属于: M11 通信网技术体制。

ETSI TS 132 371-2017 数字蜂窝通信系统(第2+阶段)(GSM全球通信系统);通用移动通信系统(UMTS);长期演进技术(LTE);通信管理;安全管理概念和要求(V14.0.0;3GPP TS 32.371版本14.0.0 发行版本14)的最新版本是哪一版?

最新版本是 ETSI TS 132 371-2024 。

标准号
ETSI TS 132 371 V14.0.0
发布时间
2017-04
标准名称
Digital cellular telecommunications system (Phase 2+) (GSM); Universal Mobile Telecommunications System (UMTS); LTE; Telecommunication management; Security Management concept and requirements
发布机构
ETSI (European Telecommunications Standards Institute)
编制依据
基于3GPP工作,属于3GPP TS 32.371版本14.0.0 Release 14
文件关系说明
本技术规范是3GPP TS 32.371系列的一部分,对应ETSI TS 132 371
专利声明(未识别专利)
本文件中可能包含必要的知识产权,相关信息可查ETSI IPR政策
提出和归口信息
由3rd Generation Partnership Project (3GPP) 编制
起草信息
由ETSI 3GPP工作组编制
版本历史
V14.0.0 (April 2017)
强制性条文说明(适用于强制性标准)
不适用
解释单位
ETSI
编制原因和目的
为了定义和指定保护Itf-N接口上交换的网络管理数据所需的必要安全特性、服务和功能,缓解IRPManager和IRPAgent之间的安全威胁。
技术内容特殊信息
重点在于OAM&P域的安全管理,特别是Itf-N接口的安全需求,不涉及其他域。
分部分标准的各部分关系
本标准为Security Management concept and requirements,是3GPP TS 32系列的一部分。
专利声明(涉及必要专利)
可能包含必要的IPR,需查阅ETSI IPR服务器
与法规或其他标准的关系说明
引用了ITU-T M.3016和X.800,以及3GPP TS 32.101/32.102/33.102等
风险分析或特殊提示
网络安全可能因操作流程、物理设施、通信链路、计算过程和数据存储的弱点而被破坏,需采取相应措施。

ETSI TS 132 371-2017 发布之时,引用了标准

  • 3GPP TS 32.101 参见 TS 132 101 V6.1.0(版本 6.1.0 第 6 版)
  • 3GPP TS 32.102 参见 TS 132 102 V6.3.0(版本 6.3.0 第 6 版)
  • 3GPP TS 32.150 参见 TS 132 150 V6.3.0(版本 6.3.0 第 6 版)
  • 3GPP TS 33.102 参见 TS 133 102 V5.4.0(版本 5.4.0 第 5 版)
  • ITU-T M.3016 电信管理网安全概况-M系列:电信管理网和网络维护:国际传输系统,电话电路,电报,传真和租用线路
  • ITU-T X.800 ITU-T X.800-X.849 系列 网络运营商安全基线补充
  • RFC 2403 在 ESP 和 AH 中使用 HMAC-MD5-96
  • RFC 2404 在 ESP 和 AH 中使用 HMAC-SHA-1-96
  • RFC 2405 具有显式 IV 的 ESP DES-CBC 密码算法
  • RFC 2406 IP 封装安全负载(ESP)(过时的 RFC 1827)
  • RFC 2410 NULL 加密算法及其在 IPsec 中的使用
  • RFC 2451 ESP CBC 模式密码算法
  • RFC 3602 AES-CBC 密码算法及其与 IPsec 的结合使用

ETSI TS 132 371-2017的历代版本如下:

  • 2024年 ETSI TS 132 371-2024 数字蜂窝电信系统( 第2阶段以上)(GSM) 通用移动通信系统(UMTS) LTE 电信管理 安全管理概念和要求(3GPP TS 32.371 版本 16.1.0 发行版 16)
  • 2022年 ETSI TS 132 371-2022 数字蜂窝电信系统( 第2阶段以上)(GSM) 通用移动通信系统(UMTS) LTE 电信管理 安全管理概念和要求(3GPP TS 32.371 版本 17.0.0 发行版 17)
  • 2020年 ETSI TS 132 371:2020 数字蜂窝电信系统(第2+阶段)(GSM) 通用移动电信系统(UMTS) LTE 电信管理 安全管理概念和要求(3GPP TS 32.371 版本 16.0.0 Release 16)
  • 2018年 ETSI TS 132 371-2018 数字蜂窝电信系统( 第2阶段以上)(GSM) 通用移动通信系统(UMTS) LTE 电信管理 安全管理概念和要求(3GPP TS 32.371 版本 15.0.0 发行版 15)
  • 2017年 ETSI TS 132 371-2017 数字蜂窝通信系统(第2+阶段)(GSM全球通信系统);通用移动通信系统(UMTS);长期演进技术(LTE);通信管理;安全管理概念和要求(V14.0.0;3GPP TS 32.371版本14.0.0 发行版本14)
  • 2016年 ETSI TS 132 371-2016 数字蜂窝电信系统(2+阶段);通用移动通信系统(UMTS); LTE;电讯管理;安全管理概念和要求(V13.0.0;3GPP TS 32.371 version 13.0.0 Release 13)
  • 2014年 ETSI TS 132 371-2014 数字蜂窝通信系统 (第2+阶段). 通用移动通信系统 (UMTS). LTE. 电信管理. 安全管理概念和要求 (V12.0.0; 3GPP TS 32.371版本12.0.0, 版本12)
  • 2012年 ETSI TS 132 371-2012 数字蜂窝电信系统( 第2阶段以上) 通用移动电信系统(UMTS) LTE 电信管理 安全管理概念和要求(3GPP TS 32.371 版本 11.0.0 发行版 11)
  • 2011年 ETSI TS 132 371-2011 数字蜂窝电信系统( 第2阶段以上) 通用移动通信系统(UMTS) LTE 电信管理 安全管理概念和要求(3GPP TS 32.371 版本 10.0.0 发行版 10)
  • 2010年 ETSI TS 132 371-2010 数字蜂窝通信系统(第2+阶段).全球移动通信系统(UMTS).长期演进技术.通信管理.安全管理概念和要求(版本9.0.0).3GPP TS 32.371(版本9.0.0,第9次发布)
  • 2009年 ETSI TS 132 371-2009 数字蜂窝通信系统(第2+阶段).全球移动通信系统(UMTS).长期演进技术.通信管理.安全管理概念和要求(版本8.0.0).3GPP TS 32.371(版本8.0.0,第8次发布)
  • 2008年 ETSI TS 132 371-2008 数字蜂窝电信系统(阶段2+),通用移动电信系统(UMTS),电信管理,安全管理概念和要求 7.3.1版,3GPP TS 32.371 版本7.3.1 发布号7
  • 2007年 ETSI TS 132 371-2007 数字蜂窝通信系统(第2+阶段).全球移动通信系统(UMTS).通信管理.安全管理概念和要求(版本7.2.0).3GPP TS 32.371(版本7.2.0,第7次发布)
  • 2006年 ETSI TS 132 371-2006 数字蜂窝通信系统(第2+阶段).全球移动通信系统(UMTS).通信管理.安全管理概念和要求.3GPP TS 32.371(版本6.2.0,第6次发布)
  • 2004年 ETSI TS 132 371-2004 数字蜂窝通信系统(第2+阶段).全球移动通信系统(UMTS).通信管理.安全管理概念和要求.3GPP TS 32.371(版本6.1.0,第6次发布)

 

The present document defines, in addition to the requirements defined in 3GPP TS 32.101 [1] and 3GPP TS 32.102 [2], the requirements for Security Management IRP. The purpose of the present document is to specify the necessary security features, services and functions to protect the network management data, including Requests, Responses, Notifications and Files, exchanged across the Itf-N. Telecommunication network security can be breached by weaknesses in operational procedures, physical installations, communication links, computational processes and data storage. Of concern here in the present document is the security problems resulting from the weaknesses inherent in the communication technologies (i.e., the 3GPP-defined Interface IRPs and their supporting protocol stacks) deployed across the Itf-N. Appropriate level of security for a telecommunication network is essential. Secured access to the network management applications, and network management data, is essential. The 3GPP-defined Interface IRPs (and their supporting protocol stacks), deployed across the Itf-N, are used for such access, and therefore, their security is considered essential. Many network management security standards exist. However, there is no recommendation on how to apply them in the Itf-N context. Their deployment across the Itf-N is left to operators. The present document and the corresponding solutions identify and recommend security standards in the Itf-N context. The business case for secured Itf-N is complex as it does not relate to the functions of the Interface IRPs (the functions are constant) but rather, it relates to variants such as the cost of recovering from security breaks, the probability of security incidents and the cost of implementing Security Management, all of which differs depending on specific deployment scenarios. The present document describes the security functions for a 3G network in terms of Security Domains (subclause 4.1). Clause 5 defines the Itf-N Security Management scope in terms of its context (subclause 5.1) and the possible threats that can occur there are defined in clause 6. Clause 7 specifies the Itf-N security Requirements.

术语描述
访问控制
access control
防止未经授权使用资源,包括防止以未经授权的方式使用资源。
责任
accountability
确保实体的行为可以唯一地追溯到该实体的属性。
认证
authentication
包括数据源认证和对等实体认证,见ITU-T建议X.800。
授权
authorization
授予权利,包括基于访问权利的访问授予。
可用性
availability
属性,指在需要时可以被授权实体访问和使用。
机密性
confidentiality
属性,指信息不向未授权的个人、实体或进程提供或披露。
凭证
credentials
用于建立实体声称身份的数据。
密码学
cryptography
体现用于转换数据的原理、手段和方法的学科,以隐藏其信息内容,防止未经美利体育登录入口官网的修改和/或防止未经授权使用。
数据完整性
data integrity
属性,指数据未经未授权的方式改变或破坏。
数据源认证
data origin authentication
证实接收到的数据源与声称的一致。
拒绝服务
denial of service
防止对资源的授权访问或延迟时间关键操作。
数字签名
digital signature
附加到数据单元或数据单元的加密变换,允许接收方证明数据源的完整性和真实性,并防止伪造。
窃听
eavesdropping
通过监控通信破坏机密性。
伪造
forgery
实体伪造信息并声称该信息是从另一实体接收的或发送到另一实体的。
集成参考点
Integration Reference Point (IRP)
参见3GPP TS 32.150。
IRP代理
IRPAgent
参见3GPP TS 32.150。
IRP管理器
IRPManager
参见3GPP TS 32.150。
信息丢失或损坏
loss or corruption of information
传输的数据完整性因未授权的删除、插入、修改、重新排序、重放或延迟而受损。
操作系统
Operations System (OS)
指独立于其在管理层级中位置的管理系统通用术语。
伪装
masquerade
实体假装是另一实体。
密码
password
保密的认证信息,通常由一串字符组成。
对等实体认证
Peer Entity Authentication
证实关联中的对等实体是被声称的那个。
否认
repudiation
参与通信的一方否认其参与了全部或部分通信。
安全审计
security audit
对系统记录和活动进行的独立审查和检查,以测试系统控制的充分性,确保符合既定政策和操作程序,美利体育登录入口官网安全违规行为,并建议任何必要的控制、政策和程序变更。
威胁
threat
潜在的违反安全的行为。
未授权访问
unauthorized access
实体试图违反现行安全策略访问数据。

ETSI TS 132 371-2017

点击查看大图

标准号
ETSI TS 132 371-2017
发布
2017年
总页数
30页
发布单位
欧洲电信标准协会
替代标准
ETSI TS 132 371-2018
当前最新
ETSI TS 132 371-2024
 
 
引用标准
3GPP TS 32.101 3GPP TS 32.102 3GPP TS 32.150 3GPP TS 33.102 ITU-T M.3016 ITU-T X.800 RFC 2403 RFC 2404 RFC 2405 RFC 2406 RFC 2410 RFC 2451 RFC 3602
 
 
本体
安全域

美利体育登录入口官网: ETSI TS 132 371-2017 中提到的仪器美利体育官网首页网址

网络元素

未提及
网络中的物理或逻辑组件,如基站、交换机等,作为管理对象。

美利体育登录入口官网: ETSI TS 132 371-2017相似标准





Copyright ?2007-2026 ANTPEDIA, All Rights Reserved
京ICP备07018254号 京公网安备1101085018 电信与信息服务业务经营许可证:京ICP证110310号
页面更新时间: 2026-07-24 15:53

美利体育(meili)官方网站_美利体育手机版下载